give_user_ban.py 7.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173
  1. from .tool.func import *
  2. def give_user_ban(name = None, ban_type = ''):
  3. with get_db_connect() as conn:
  4. curs = conn.cursor()
  5. ip = ip_check()
  6. if ban_check(ip = ip, tool = 'login')[0] == 1:
  7. if ip_or_user(ip) == 1 or acl_check(tool = 'all_admin_auth', ip = ip) != 0:
  8. return re_error(conn, '/ban')
  9. else:
  10. if acl_check(tool = 'ban_auth', ip = ip) == 1:
  11. return re_error(conn, '/error/3')
  12. if flask.request.method == 'POST':
  13. end = '0'
  14. date_select = flask.request.form.get('date_type', 'days')
  15. if date_select == 'date':
  16. time_limit = flask.request.form.get('date', '')
  17. if re.search(r'^[0-9]{4}-[0-9]{2}-[0-9]{2}$', time_limit):
  18. end = time_limit + ' 00:00:00'
  19. else:
  20. time_limit = int(number_check(flask.request.form.get('date_days', '1')))
  21. time = datetime.datetime.now()
  22. plus = datetime.timedelta(days = time_limit)
  23. end = (time + plus).strftime("%Y-%m-%d %H:%M:%S")
  24. regex_get = flask.request.form.get('do_ban_type', '')
  25. why = flask.request.form.get('why', '')
  26. release = ''
  27. login = ''
  28. ban_option = flask.request.form.get('ban_option', '')
  29. if ban_option == 'login_able':
  30. login = 'O'
  31. elif ban_option == 'edit_request_able':
  32. login = 'E'
  33. elif ban_option == 'completely_ban':
  34. login = 'A'
  35. elif ban_option == 'dont_come_this_site':
  36. login = 'D'
  37. elif ban_option == 'release':
  38. release = '1'
  39. if ban_type == 'multiple':
  40. all_user = re.findall(r'([^\n]+)\n', flask.request.form.get('name', 'test').replace('\r', '') + '\n')
  41. else:
  42. if name:
  43. all_user = [name]
  44. else:
  45. all_user = [flask.request.form.get('name', 'test')]
  46. for name in all_user:
  47. if regex_get == 'regex':
  48. type_d = 'regex'
  49. try:
  50. re.compile(name)
  51. except:
  52. return re_error(conn, '/error/23')
  53. elif regex_get == 'cidr':
  54. type_d = 'cidr'
  55. try:
  56. ipaddress.IPv4Network(name, False)
  57. except:
  58. try:
  59. ipaddress.IPv6Network(name, False)
  60. except:
  61. return re_error(conn, '/error/45')
  62. else:
  63. type_d = None
  64. if type_d:
  65. if acl_check(tool = 'owner_auth', memo = 'ban ' + type_d + ' (' + name + ')') == 1:
  66. return re_error(conn, '/error/3')
  67. else:
  68. if name == ip:
  69. if acl_check(tool = 'all_admin_auth', memo = 'ban (' + name + ')') == 1:
  70. return re_error(conn, '/error/3')
  71. else:
  72. if acl_check(tool = 'ban_auth', memo = 'ban (' + name + ')') == 1:
  73. return re_error(conn, '/error/3')
  74. ban_insert(conn,
  75. name,
  76. end,
  77. why,
  78. login,
  79. ip_check(),
  80. type_d,
  81. 1 if release != '' else 0
  82. )
  83. return redirect(conn, '/recent_block')
  84. else:
  85. if ban_type == 'multiple':
  86. main_name = get_lang(conn, 'multiple_ban')
  87. n_name = '<textarea class="opennamu_textarea_500" placeholder="' + get_lang(conn, 'name_or_ip_or_regex_or_cidr_multiple') + '" name="name"></textarea><hr class="main_hr">'
  88. else:
  89. main_name = get_lang(conn, 'ban')
  90. n_name = '<input placeholder="' + get_lang(conn, 'name_or_ip_or_regex_or_cidr') + '" value="' + (name if name else '') + '" name="name"><hr class="main_hr">'
  91. now = 0
  92. if ban_type == 'multiple':
  93. action = 'action="/auth/ban/multiple"'
  94. else:
  95. action = 'action="/auth/ban"'
  96. date_value = ''
  97. info_data = ''
  98. if name:
  99. curs.execute(db_change("select end from rb where block = ? and ongoing = '1'"), [name])
  100. db_data = curs.fetchall()
  101. if db_data and db_data[0][0] != '':
  102. date_value = db_data[0][0].split()[0]
  103. if ban_type == '':
  104. info_data = '<div id="opennamu_get_user_info">' + html.escape(name) + '</div>'
  105. return easy_minify(conn, flask.render_template(skin_check(conn),
  106. imp = [main_name, wiki_set(conn), wiki_custom(conn), wiki_css([now, 0])],
  107. data = info_data + '''
  108. <form method="post" ''' + action + '''>
  109. <h2>''' + get_lang(conn, 'method') + '''</h2>
  110. ''' + n_name + '''
  111. <select name="do_ban_type">
  112. <option value="normal">''' + get_lang(conn, 'normal') + '''</option>
  113. <option value="regex" ''' + ('selected' if ban_type == 'regex' else '') + '>' + get_lang(conn, 'regex') + '''</option>
  114. <option value="cidr" ''' + ('selected' if ban_type == 'cidr' else '') + '>' + get_lang(conn, 'cidr') + '''</option>
  115. </select>
  116. <hr class="main_hr">
  117. <select name="ban_option">
  118. <option value="">''' + get_lang(conn, 'default') + '''</option>
  119. <option value="login_able">''' + get_lang(conn, 'login_able') + '''</option>
  120. <option value="edit_request_able">''' + get_lang(conn, 'edit_request_able') + '''</option>
  121. <option value="completely_ban">''' + get_lang(conn, 'completely_ban') + '''</option>
  122. <option value="dont_come_this_site">''' + get_lang(conn, 'dont_come_this_site') + '''</option>
  123. <option value="release">''' + get_lang(conn, 'release') + '''</option>
  124. </select>
  125. <h2>''' + get_lang(conn, 'date') + '''</h2>
  126. <select name="date_type">
  127. <option value="date">''' + get_lang(conn, 'date') + '''</option>
  128. <option value="days">''' + get_lang(conn, 'day') + '''</option>
  129. </select>
  130. <hr class="main_hr">
  131. <span>''' + get_lang(conn, 'day') + '''</span>
  132. <hr class="main_hr">
  133. <input name="date_days">
  134. <hr class="main_hr">
  135. <span>''' + get_lang(conn, 'date') + '''</span>
  136. <hr class="main_hr">
  137. <input type="date" value="''' + date_value + '''" name="date" pattern="\\d{4}-\\d{2}-\\d{2}">
  138. <h2>''' + get_lang(conn, 'other') + '''</h2>
  139. <input placeholder="''' + get_lang(conn, 'why') + '''" name="why" type="text">
  140. <hr class="main_hr">
  141. <button type="submit">''' + get_lang(conn, 'save') + '''</button>
  142. </form>
  143. ''',
  144. menu = [['manager', get_lang(conn, 'return')]]
  145. ))